security advisory regarding cyrus-sasl?

Marcel Holtmann marcel at holtmann.org
Thu Apr 13 10:05:56 EDT 2006


Hi Alexey,

> >the advisory speaks about cyrus-sasl-2.1.18 and is really vague. Can you
> >tell us when it got fixed and point to actual patch in the CVS. I assume
> >that this issue has already been fixed in version 2.1.20, but I might be
> >wrong.
> >  
> >
> Yes, 2.1.20 should do. 2.1.21 doesn't segfault. I didn't test any 
> versions in between.

can you point us to the fix in the CVS for this problem, it would be
terrific to know for sure how it has been fixed.

Do you also have some code for testing this, so we can verify this
problem by ourself?

Regards

Marcel




More information about the Cyrus-sasl mailing list